Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

zzcms — Vulnerabilities & Security Advisories 20

All 20 CVE vulnerabilities found in zzcms, with AI-generated Chinese analysis, references, and POCs.

This page aggregates vulnerability data for the web application server zzcms, focusing on the specific product and its associated weakness classes. It collects security advisories, bug reports, and technical details related to flaws in zzcms, covering a historical time range spanning multiple years of recorded issues. Readers can use this resource to track the vendor's security posture, analyze the prevalence of specific weakness types such as cross-site scripting or SQL injection, and review the complete vulnerability history of the zzcms codebase. The aggregation facilitates a structured view of how these systems have evolved regarding security, enabling analysts and developers to identify recurring patterns in the software's defensive capabilities without relying on scattered individual CVE identifiers. This collection serves as a centralized repository for understanding the evolution of zzcms security, supporting both retrospective analysis and ongoing monitoring of new disclosures.

Vendor: zzcms

CVE ID Title CVSS Severity Published
CVE-2025-14837 ZZCMS Backend Website Settings siteconfig.php stripfxg code injection CWE-94 4.7 Medium 2025-12-17
CVE-2025-14836 ZZCMS User Data Storage user_save.php cleartext storage in file CWE-313 2.7 Low 2025-12-17
CVE-2025-13171 ZZCMS wangkan_list.php sql injection CWE-89 6.3 Medium 2025-11-14
CVE-2025-1949 ZZCMS URL register_nodb.php cross site scripting CWE-79 4.3 Medium 2025-03-04
CVE-2025-0565 ZZCMS index.php sql injection CWE-89 7.3 High 2025-01-19
CVE-2024-11242 ZZCMS Keyword Filtering ad_list.php sql injection CWE-89 4.7 Medium 2024-11-15
CVE-2024-11130 ZZCMS msg.php cross site scripting CWE-79 2.4 Low 2024-11-12
CVE-2024-10293 ZZCMS functions.php Ebak_SetGotoPak unrestricted upload CWE-434 6.3 Medium 2024-10-23
CVE-2024-10292 ZZCMS ChangeTable.php unrestricted upload CWE-434 6.3 Medium 2024-10-23
CVE-2024-10291 ZZCMS phome.php Ebak_DotranExecutSQL sql injection CWE-89 6.3 Medium 2024-10-23
CVE-2024-10290 ZZCMS inc.php information disclosure CWE-200 5.3 Medium 2024-10-23
CVE-2024-7927 ZZCMS class.php path traversal CWE-22 7.3 High 2024-08-19
CVE-2024-7926 ZZCMS about_edit.php path traversal CWE-22 7.3 High 2024-08-19
CVE-2024-7925 ZZCMS eginfo.php information disclosure CWE-200 4.3 Medium 2024-08-19
CVE-2024-7924 ZZCMS list.php path traversal CWE-22 5.3 Medium 2024-08-19
CVE-2019-1010153 ZZCMS SQL注入漏洞 9.8 - 2019-07-23
CVE-2019-1010152 ZZCMS 输入验证错误漏洞 9.8 - 2019-07-23
CVE-2019-1010150 ZZCMS 输入验证错误漏洞 9.8 - 2019-07-23
CVE-2019-1010149 ZZCMS 输入验证错误漏洞 9.8 - 2019-07-23
CVE-2019-1010148 ZZCMS SQL注入漏洞 9.8 - 2019-07-23

All 20 known CVE vulnerabilities affecting zzcms with full Chinese analysis, references, and POCs where available.